Social bookmarking
Conservar e compartilhar o endereço de PC Seguro em seu site de social bookmarking
Conservar e compartilhar o endereço de Fórum PC Brasil em seu site de social bookmarking
Estatísticas
Temos 14810 usuários registradosO último membro registrado é Josevinil
Os nossos membros postaram um total de 36047 mensagens em 3685 assuntos
Quem está conectado?
Há 6 usuários online :: 0 registrados, 0 invisíveis e 6 visitantes Nenhum
O recorde de usuários online foi de 301 em Ter 26 Out 2021, 15:28
Procurar
Top dos mais postadores
Power Max | ||||
joram | ||||
Wings [In Memoriam] | ||||
caedurodrigues | ||||
Amigo Brasileiro | ||||
luizvilarinho | ||||
Danii | ||||
Admin | ||||
Danilo Marsaro | ||||
Andreata |
Problemas com adwares no PC
3 participantes
Página 1 de 1
Problemas com adwares no PC
Estou com diversos anúncios na tela, o facebook trava com tanta coisa que abre e o youtube esta com tanta coisa que a tela fica cheia e nem da pra ver o vídeo, sem falar que o computador esta lento pra iniciar e durante a utilização, gostaria e ajuda por favor!
Cristi4n0- Iniciante
- Mensagens : 17
Reputação : 0
Data de inscrição : 12/06/2014
Idade : 42
Localização : Pernambuco-Brasil
Re: Problemas com adwares no PC
Olá!
Baixe o programa Adwcleaner clicando no link abaixo e depois clique no botão Download Now @BleepingComputer:
[Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
Para executar corretamente o AdwCleaner é só seguir as dicas deste tutorial:
[Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
* Na sua próxima resposta poste o log (relatório) do Adwcleaner que estará em C:\AdwCleaner\AdwCleaner[S0].txt
Ficamos na espera.
Baixe o programa Adwcleaner clicando no link abaixo e depois clique no botão Download Now @BleepingComputer:
[Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
Para executar corretamente o AdwCleaner é só seguir as dicas deste tutorial:
[Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
* Na sua próxima resposta poste o log (relatório) do Adwcleaner que estará em C:\AdwCleaner\AdwCleaner[S0].txt
Ficamos na espera.
Danii- Membro Pleno
- Mensagens : 571
Reputação : 80
Data de inscrição : 04/04/2014
Localização : Brasil
Re: Problemas com adwares no PC
não estou conseguindo postar o log, retorna uma mensagem dizendo que a largura da mensagem esta acima do limite permitido, o que faço?
Cristi4n0- Iniciante
- Mensagens : 17
Reputação : 0
Data de inscrição : 12/06/2014
Idade : 42
Localização : Pernambuco-Brasil
Re: Problemas com adwares no PC
segue anexo o log!
Cristi4n0- Iniciante
- Mensagens : 17
Reputação : 0
Data de inscrição : 12/06/2014
Idade : 42
Localização : Pernambuco-Brasil
Re: Problemas com adwares no PC
Você postou o relatório AdwCleaner [R0]
Mas o que precisamos é do [SO].
C:\AdwCleaner\AdwCleaner[S0].txt
Mas o que precisamos é do [SO].
C:\AdwCleaner\AdwCleaner[S0].txt
Danii- Membro Pleno
- Mensagens : 571
Reputação : 80
Data de inscrição : 04/04/2014
Localização : Brasil
Re: Problemas com adwares no PC
agora não consigo mandar, retorna a mensagem abaixo!
Não é possível enviar o arquivo : o espaço total de armazenamento foi ultrapassado. (Espaço restante : 45 Kb)
Não é possível enviar o arquivo : o espaço total de armazenamento foi ultrapassado. (Espaço restante : 45 Kb)
Cristi4n0- Iniciante
- Mensagens : 17
Reputação : 0
Data de inscrição : 12/06/2014
Idade : 42
Localização : Pernambuco-Brasil
Re: Problemas com adwares no PC
Acesse este site: [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
Clique em Escolher arquivo > Encontre o arquivo e clique em Abrir > Clique em Créer le lien Cjoint
Copie o link que aparecerá ao lado da frase Le lien a été créé e poste este link em sua próxima resposta.
Clique em Escolher arquivo > Encontre o arquivo e clique em Abrir > Clique em Créer le lien Cjoint
Copie o link que aparecerá ao lado da frase Le lien a été créé e poste este link em sua próxima resposta.
Danii- Membro Pleno
- Mensagens : 571
Reputação : 80
Data de inscrição : 04/04/2014
Localização : Brasil
Re: Problemas com adwares no PC
[Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
Cristi4n0- Iniciante
- Mensagens : 17
Reputação : 0
Data de inscrição : 12/06/2014
Idade : 42
Localização : Pernambuco-Brasil
Re: Problemas com adwares no PC
Passei novamente e retornou o seguinte:
# AdwCleaner v3.214 - Relatório criado 01/07/2014 às 23:06:21
# Atualizado 29/06/2014 por Xplode
# Sistema Operacional : Windows 7 Home Basic Service Pack 1 (32 bits)
# Usuário : PAULA - PAULA-PC
# Executando de : C:\Users\PAULA\Desktop\AdwCleaner.exe
# Opção : Limpar
***** [ Serviços ] *****
***** [ Arquivos / Pastas ] *****
***** [ Atalhos ] *****
***** [ Registro ] *****
***** [ Navegadores ] *****
-\\ Internet Explorer v11.0.9600.17041
-\\ Mozilla Firefox v29.0.1 (pt-BR)
[ Arquivo : C:\Users\PAULA\AppData\Roaming\Mozilla\Firefox\Profiles\0idzxbd9.default\prefs.js ]
-\\ Google Chrome v35.0.1916.114
[ Arquivo : C:\Users\PAULA\AppData\Local\Google\Chrome\User Data\Default\preferences ]
*************************
AdwCleaner[R0].txt - [66936 octets] - [01/07/2014 22:12:15]
AdwCleaner[R1].txt - [1039 octets] - [01/07/2014 23:05:22]
AdwCleaner[S0].txt - [63050 octets] - [01/07/2014 22:17:30]
AdwCleaner[S1].txt - [959 octets] - [01/07/2014 23:06:21]
########## EOF - C:\AdwCleaner\AdwCleaner[S1].txt - [1018 octets] ##########
# AdwCleaner v3.214 - Relatório criado 01/07/2014 às 23:06:21
# Atualizado 29/06/2014 por Xplode
# Sistema Operacional : Windows 7 Home Basic Service Pack 1 (32 bits)
# Usuário : PAULA - PAULA-PC
# Executando de : C:\Users\PAULA\Desktop\AdwCleaner.exe
# Opção : Limpar
***** [ Serviços ] *****
***** [ Arquivos / Pastas ] *****
***** [ Atalhos ] *****
***** [ Registro ] *****
***** [ Navegadores ] *****
-\\ Internet Explorer v11.0.9600.17041
-\\ Mozilla Firefox v29.0.1 (pt-BR)
[ Arquivo : C:\Users\PAULA\AppData\Roaming\Mozilla\Firefox\Profiles\0idzxbd9.default\prefs.js ]
-\\ Google Chrome v35.0.1916.114
[ Arquivo : C:\Users\PAULA\AppData\Local\Google\Chrome\User Data\Default\preferences ]
*************************
AdwCleaner[R0].txt - [66936 octets] - [01/07/2014 22:12:15]
AdwCleaner[R1].txt - [1039 octets] - [01/07/2014 23:05:22]
AdwCleaner[S0].txt - [63050 octets] - [01/07/2014 22:17:30]
AdwCleaner[S1].txt - [959 octets] - [01/07/2014 23:06:21]
########## EOF - C:\AdwCleaner\AdwCleaner[S1].txt - [1018 octets] ##########
Cristi4n0- Iniciante
- Mensagens : 17
Reputação : 0
Data de inscrição : 12/06/2014
Idade : 42
Localização : Pernambuco-Brasil
Re: Problemas com adwares no PC
É este mesmo!
Você já havia feito o procedimento de limpeza.
Só havia postado o relatório errado.
Baixe o programa Junkware Removal Tool no link abaixo:
[Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
Para executar corretamente o programa acima é só seguir as dicas deste tutorial:
[Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
* Na sua próxima resposta poste o log (relatório) do Junkware Removal Tool que estará salvo em sua área de trabalho com o nome de JRT.txt
Ficamos na espera.
Você já havia feito o procedimento de limpeza.
Só havia postado o relatório errado.
Baixe o programa Junkware Removal Tool no link abaixo:
[Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
Para executar corretamente o programa acima é só seguir as dicas deste tutorial:
[Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
* Na sua próxima resposta poste o log (relatório) do Junkware Removal Tool que estará salvo em sua área de trabalho com o nome de JRT.txt
Ficamos na espera.
Danii- Membro Pleno
- Mensagens : 571
Reputação : 80
Data de inscrição : 04/04/2014
Localização : Brasil
Re: Problemas com adwares no PC
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.1.4 (04.06.2014:1)
OS: Windows 7 Home Basic x86
Ran by PAULA on 01/07/2014 at 23:19:19,23
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~ Services
~~~ Registry Values
Successfully repaired: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\AboutURLs\\Tabs
~~~ Registry Keys
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\baidu
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\baidu
~~~ Files
~~~ Folders
Successfully deleted: [Folder] "C:\ProgramData\boost_interprocess"
Successfully deleted: [Folder] "C:\Users\PAULA\AppData\Roaming\getrighttogo"
~~~ FireFox
Successfully deleted: [Registry Value] HKEY_LOCAL_MACHINE\Software\Mozilla\Firefox\Extensions\\quiknowledge@quiknowledge.com
Successfully deleted the following from C:\Users\PAULA\AppData\Roaming\mozilla\firefox\profiles\0idzxbd9.default\prefs.js
user_pref("extensions.exGqGQ.url", "hxxp://terminalukusaa.us/sync2/?q=hfZ9ofV9CShEAen0rjs6rGhTB6lKDzt4oktitNtVh7n0rjnEqds5rdw8rTs4tMFHhd9Fqda7rdYFqHwGrTrMDMlGojUMAe4UojY4rHkHp
Emptied folder: C:\Users\PAULA\AppData\Roaming\mozilla\firefox\profiles\0idzxbd9.default\minidumps [16 files]
~~~ Event Viewer Logs were cleared
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 01/07/2014 at 23:23:06,65
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.1.4 (04.06.2014:1)
OS: Windows 7 Home Basic x86
Ran by PAULA on 01/07/2014 at 23:19:19,23
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~ Services
~~~ Registry Values
Successfully repaired: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\AboutURLs\\Tabs
~~~ Registry Keys
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\baidu
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\baidu
~~~ Files
~~~ Folders
Successfully deleted: [Folder] "C:\ProgramData\boost_interprocess"
Successfully deleted: [Folder] "C:\Users\PAULA\AppData\Roaming\getrighttogo"
~~~ FireFox
Successfully deleted: [Registry Value] HKEY_LOCAL_MACHINE\Software\Mozilla\Firefox\Extensions\\quiknowledge@quiknowledge.com
Successfully deleted the following from C:\Users\PAULA\AppData\Roaming\mozilla\firefox\profiles\0idzxbd9.default\prefs.js
user_pref("extensions.exGqGQ.url", "hxxp://terminalukusaa.us/sync2/?q=hfZ9ofV9CShEAen0rjs6rGhTB6lKDzt4oktitNtVh7n0rjnEqds5rdw8rTs4tMFHhd9Fqda7rdYFqHwGrTrMDMlGojUMAe4UojY4rHkHp
Emptied folder: C:\Users\PAULA\AppData\Roaming\mozilla\firefox\profiles\0idzxbd9.default\minidumps [16 files]
~~~ Event Viewer Logs were cleared
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 01/07/2014 at 23:23:06,65
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Cristi4n0- Iniciante
- Mensagens : 17
Reputação : 0
Data de inscrição : 12/06/2014
Idade : 42
Localização : Pernambuco-Brasil
Re: Problemas com adwares no PC
Consta o Baidu no seu pc.
Gostaria de removê-lo?
Você utiliza outro antivírus?
Gostaria de removê-lo?
Você utiliza outro antivírus?
Danii- Membro Pleno
- Mensagens : 571
Reputação : 80
Data de inscrição : 04/04/2014
Localização : Brasil
Re: Problemas com adwares no PC
gostaria sim, o único antivírus que tem é o Microsoft Security Essentials. você recomenda algum outro ou só este serve?
Cristi4n0- Iniciante
- Mensagens : 17
Reputação : 0
Data de inscrição : 12/06/2014
Idade : 42
Localização : Pernambuco-Brasil
Re: Problemas com adwares no PC
Desative temporariamente seu antivírus para evitar conflitos.
Acesse este link abaixo e clique no primeiro botão da esquerda que é o botão Download Zoek.exe:
[Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
*Clique com o botão direito do mouse no Zoek.exe e selecione [Tens de ter uma conta e sessão iniciada para poderes visualizar esta imagem]
* Selecione e copie todo este texto destacado em vermelho e cole-o no espaço em branco do Zoek.
createsrpoint;
autoclean;
emptyalltemp;
iedefaults;
resetieproxy;
resethosts;
shortcutfix;
ffdefaults;
firefoxlook;
reset chrome;
chrdefaults;
chromelook;
Baidu;z
Baidu;a
*Clique [Run Script]
*Durante o scan uma mensagem parecida com esta abaixo mostrando o progresso do escaneamento será apresentada. Aguarde o término...pode demorar!
[Tens de ter uma conta e sessão iniciada para poderes visualizar esta imagem]
*Caso a reinicialização do PC seja solicitada, clique [OK]
* Poste o log do Zoek que estará em C:\zoek-results.txt em sua próxima resposta.
Acesse este link abaixo e clique no primeiro botão da esquerda que é o botão Download Zoek.exe:
[Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
*Clique com o botão direito do mouse no Zoek.exe e selecione [Tens de ter uma conta e sessão iniciada para poderes visualizar esta imagem]
* Selecione e copie todo este texto destacado em vermelho e cole-o no espaço em branco do Zoek.
createsrpoint;
autoclean;
emptyalltemp;
iedefaults;
resetieproxy;
resethosts;
shortcutfix;
ffdefaults;
firefoxlook;
reset chrome;
chrdefaults;
chromelook;
Baidu;z
Baidu;a
*Clique [Run Script]
*Durante o scan uma mensagem parecida com esta abaixo mostrando o progresso do escaneamento será apresentada. Aguarde o término...pode demorar!
[Tens de ter uma conta e sessão iniciada para poderes visualizar esta imagem]
*Caso a reinicialização do PC seja solicitada, clique [OK]
* Poste o log do Zoek que estará em C:\zoek-results.txt em sua próxima resposta.
Danii- Membro Pleno
- Mensagens : 571
Reputação : 80
Data de inscrição : 04/04/2014
Localização : Brasil
Re: Problemas com adwares no PC
Zoek.exe v5.0.0.0 Updated 30-06-2014
Tool run by PAULA on 01/07/2014 at 23:43:34,49.
Microsoft Windows 7 Home Basic 6.1.7601 Service Pack 1 x86
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\PAULA\Desktop\zoek.exe [Scan all users] [Script inserted]
==== System Restore Info ======================
01/07/2014 23:45:39 Zoek.exe System Restore Point Created Succesfully.
==== Reset Hosts File ======================
# Copyright (c) 1993-2006 Microsoft Corp.
#
# This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
#
# This file contains the mappings of IP addresses to host names. Each
# entry should be kept on an individual line. The IP address should
# be placed in the first column followed by the corresponding host name.
# The IP address and the host name should be separated by at least one
# space.
#
# Additionally, comments (such as these) may be inserted on individual
# lines or following the machine name denoted by a '#' symbol.
#
# For example:
#
# 102.54.94.97 rhino.acme.com # source server
# 38.25.63.10 x.acme.com # x client host
# localhost name resolution is handle within DNS itself.
127.0.0.1 localhost
::1 localhost
==== Deleting CLSID Registry Keys ======================
==== Deleting CLSID Registry Values ======================
==== Deleting Services ======================
==== FireFox Fix ======================
Deleted from C:\Users\PAULA\AppData\Roaming\Mozilla\Firefox\Profiles\0idzxbd9.default\prefs.js:
user_pref("browser.startup.homepage", "[Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
Added to C:\Users\PAULA\AppData\Roaming\Mozilla\Firefox\Profiles\0idzxbd9.default\prefs.js:
ProfilePath: C:\Users\PAULA\AppData\Roaming\Mozilla\Firefox\Profiles\0idzxbd9.default
user.js not found
---- FireFox user.js and prefs.js backups ----
prefs_072014_2358_.backup
==== Deleting Files \ Folders ======================
C:\Users\PAULA\AppData\LocalLow\{20B0841A-1A86-A929-B78C-0F39CCF65151} deleted
C:\Users\PAULA\AppData\LocalLow\{CC69E8A1-03CD-80DD-9FCD-7CDB46178B27} deleted
C:\Users\PAULA\AppData\LocalLow\{F7ACAB96-6911-40C1-4CD4-2B9FC785161C} deleted
C:\PROGRA~2\9340d2a9abd25e15 deleted
C:\Users\PAULA\.android deleted
C:\PROGRA~2\FineDeAAlSoft deleted
C:\PROGRA~2\FileSplitUpLoad.dll deleted
C:\PROGRA~2\MiniApp deleted
C:\PROGRA~2\InstallMate deleted
C:\Users\PAULA\AppData\Local\AuroraSavings_08071042 deleted
C:\Users\PAULA\AppData\Local\cache deleted
C:\Users\PAULA\Searches deleted
C:\Users\PAULA\AppData\LocalLow\SIEN SA deleted
C:\Windows\tasks\Registry Optimizer_DEFAULT.job deleted
C:\Windows\tasks\Registry Optimizer_UPDATES.job deleted
C:\Windows\System32\drivers\{2c976a7f-dbdc-4756-870f-f6d183fe7a7e}w.sys deleted
C:\Windows\System32\drivers\{a3f28269-ad17-41a8-b032-3e0313ef8979}w.sys deleted
C:\Windows\System32\InstallUtil.InstallLog deleted
C:\Users\PAULA\AppData\Roaming\Mozilla\Firefox\Profiles\0idzxbd9.default\extensions\a.oaya_v@wivr-irazxad.net deleted
"C:\Windows\Installer\2ab185.msi" deleted
"C:\Users\PAULA\AppData\Local\{2E21653A-B3F1-4E5C-AF55-347899DBF411}" deleted
"C:\Users\PAULA\AppData\Local\{5EED15AF-9306-4854-8717-6B3F0F6923B3}" deleted
"C:\Users\PAULA\AppData\Local\{912108E8-636A-4164-BD94-B6BD3DE2B74D}" deleted
"C:\Users\PAULA\AppData\Local\{954B7168-61F3-45E1-928B-01BB08640AF8}" deleted
"C:\Users\PAULA\AppData\Local\{A67E826C-B37D-4A06-A399-07C00C9FB5FC}" deleted
"C:\Users\PAULA\AppData\Local\{CFD37726-6C6E-4251-882A-9DA3145B0F8A}" deleted
"C:\Users\PAULA\AppData\Roaming\.NANotifyHere" deleted
"C:\Users\PAULA\AppData\Roaming\DMCache" deleted
==== Folders Found ======================
2014-07-02 01:17:51 2014-07-02 01:17:51 -------- d-----w- C:\AdwCleaner\Quarantine\C\ProgramData\baidu
2014-07-02 01:18:34 2014-07-02 01:18:34 -------- d-----w- C:\AdwCleaner\Quarantine\C\Users\PAULA\AppData\Roaming\baidu
2014-07-02 01:18:34 2014-07-02 01:18:34 -------- d-----w- C:\AdwCleaner\Quarantine\C\Users\PAULA\AppData\Roaming\baidu\Baidu Antivirus
2014-07-02 01:18:35 2014-07-02 01:18:35 -------- d-----w- C:\AdwCleaner\Quarantine\C\Users\Public\Documents\baidu
2014-01-30 16:30:59 2014-01-30 16:33:00 -------- d-----w- C:\Program Files\Baidu Security
2014-01-30 16:33:00 2014-06-08 21:20:00 -------- d-----w- C:\Program Files\Baidu Security\Baidu Antivirus
2014-01-30 16:33:48 2014-04-29 17:55:15 -------- d-----w- C:\ProgramData\Baidu Security
2014-01-30 16:33:48 2014-04-29 17:55:15 -------- d-----w- C:\Users\All Users\Baidu Security
2014-01-30 16:31:01 2014-01-30 16:31:01 -------- d-----w- C:\Users\PAULA\AppData\Local\Temp\baidu_secure
2014-01-30 16:30:59 2014-01-30 16:30:59 -------- d-----w- C:\Users\PAULA\AppData\Roaming\Baidu Security
2014-02-08 19:54:20 2014-02-08 19:54:20 -------- d-----w- C:\Users\PAULA\AppData\Roaming\Baidu Security\PC Faster\4.0.0.0\Uninstall\Baidu PC Faster Uninstall
2014-02-08 19:54:20 2014-02-08 19:54:20 -------- d-----w- C:\Users\PAULA\AppData\Roaming\Baidu Security\PC Faster\4.0.0.0\Uninstall\Baidu PC Faster Uninstall HK
2014-01-30 16:30:59 2014-01-30 16:38:26 -------- d-----w- C:\Users\Public\Documents\Baidu Security
==== Files Found ======================
--- C:\Users\PAULA\AppData\Local\Temp\Baidu_Secure_SystemUp_4.0.1.56634.exe ---
Company: Baidu, Inc.
File Description: PC Faster Setup
File Version: 4.0.1.56634
Product Name: Baidu PC Faster
Copyright: Copyright (C) 2013 Baidu, Inc. All Rights Reserved.
Original Filename:
File type: ----a-w-
File size: 18602568
Created time: 2014-01-30 16:31:00
Modified time: 2014-01-30 16:31:00
MD5: 2640F5FA5DE6307CA4C49D95A4F713DB
SHA1: 53CB79D22755B8B89A8A26EC5C27D588ED8FAC91
--- C:\Windows\Prefetch\BAIDU_SECURE_SYSTEMUP_4.0.1.5-2719B0D7.pf ---
Company: ------
File Description: ------
File Version: ------
Product Name: ------
Copyright: ------
Original Filename: ------
File type: ----a-w-
File size: 115786
Created time: 2014-01-30 16:32:57
Modified time: 2014-01-30 16:32:57
MD5: ADD92478322D05993F541D463AD6C4C0
SHA1: 1377496C802A7D49E8CA1752C2D099E20A534DC2
==== Registry Search Results for "Baidu" ======================
[HKEY_LOCAL_MACHINE\SOFTWARE\Baidu Security]
[HKEY_LOCAL_MACHINE\SOFTWARE\Baidu Security\Antivirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Baidu Security\Antivirus]
"uuurl"="http://sync.br.bav.baidu.com/cgi-bin/report_uu_msg_bavv2.cgi"
[HKEY_LOCAL_MACHINE\SOFTWARE\Baidu Security\DuplicateRecord]
[HKEY_LOCAL_MACHINE\SOFTWARE\Baidu Security\LogLoc]
[HKEY_LOCAL_MACHINE\SOFTWARE\Baidu Security\PC Faster]
[HKEY_LOCAL_MACHINE\SOFTWARE\Baidu Security\PC Faster\4.0.0.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Baidu Security\PC Faster\4.0.0.0\Setup]
[HKEY_LOCAL_MACHINE\SOFTWARE\Baidu Security\PC Faster\LogUp]
[HKEY_LOCAL_MACHINE\SOFTWARE\Baidu_Drp_pos]
[HKEY_LOCAL_MACHINE\SOFTWARE\Baidu_Drp_pos\DRP]
[HKEY_LOCAL_MACHINE\SOFTWARE\Baidu_Drp_pos\DRP\Processing]
[HKEY_LOCAL_MACHINE\SOFTWARE\Baidu_Drp_pos\DRP\Temp]
"C:\\ProgramData\\Baidu Security\\RpData\\rpFile-Baidu_Secure_SystemUp_4.0.1.56634-2014-01-30 01-33-48-0929-[19937].tmp"=""
"C:\\ProgramData\\Baidu Security\\RpData\\rpFile-PCFasterSvc-2014-01-30 01-34-53-0722-[20150].tmp"=""
"C:\\ProgramData\\Baidu Security\\RpData\\rpFile-Updater-2014-01-30 01-34-53-0724-[20150].tmp"=""
"C:\\ProgramData\\Baidu Security\\RpData\\rpFile-PCFaster-2014-01-30 01-00-43-0407-[27711].tmp"=""
"C:\\ProgramData\\Baidu Security\\RpData\\rpFile-Updater-2014-02-04 02-10-29-0646-[22076].tmp"=""
"C:\\ProgramData\\Baidu Security\\RpData\\rpFile-Updater-2014-02-05 02-11-38-0160-[11290].tmp"=""
"C:\\ProgramData\\Baidu Security\\RpData\\rpFile-PcfTray-2014-02-06 02-18-06-0374-[30804].tmp"=""
"C:\\ProgramData\\Baidu Security\\RpData\\rpFile-PCFaster-2014-02-06 02-18-36-0090-[30902].tmp"=""
"C:\\ProgramData\\Baidu Security\\RpData\\rpFile-PCFasterSvc-2014-02-08 02-42-42-0786-[7592].tmp"=""
"C:\\ProgramData\\Baidu Security\\RpData\\rpFile-PcfTray-2014-02-08 02-42-45-0750-[7602].tmp"=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility\{77FEF28E-EB96-44FF-B511-3185DEA48697}]
"DllName"="baidubar.dll;BaiduBarX.dll;BaiduBarX.dll;BaiduBarX.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility\{B580CF65-E151-49C3-B73F-70B13FCA8E86}]
"DllName"="baidubar.dll;BaiduBarX.dll;BaiduBarX.dll;BaiduBarX.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Baidu Antivirus]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_BFILTER\0000]
"DeviceDesc"="Baidu Antivirus Minifilter Driver"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_BFMON\0000]
"DeviceDesc"="Baidu FS Monitor Driver"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_BHBASE\0000]
"DeviceDesc"="Baidu Hook Base"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_BNDEF\0000]
"DeviceDesc"="Baidu NetDefense"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_BPROTECT\0000]
"DeviceDesc"="Baidu Protect"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_BPROTECTEX\0000]
"DeviceDesc"="Baidu ProtectEx"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\Bfilter]
"DisplayName"="Baidu Antivirus Minifilter Driver"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\Bfmon]
"DisplayName"="Baidu FS Monitor Driver"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\Bhbase]
"DisplayName"="Baidu Hook Base"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\BHipsEx]
"DisplayName"="Baidu HipsEx Driver"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\Bndef]
"DisplayName"="Baidu NetDefense"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\Bprotect]
"DisplayName"="Baidu Protect"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\Bprotect]
"InstPath"="C:\\Program Files\\Baidu Security\\Baidu Antivirus"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\BprotectEx]
"DisplayName"="Baidu ProtectEx"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\BprotectEx]
"InstPath"="C:\\Program Files\\Baidu Security\\PC Faster\\4.0.0.0"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\PCFApiUtil]
"ImagePath"="\\??\\C:\\Program Files\\Baidu Security\\PC Faster\\4.0.0.0\\PCFApiUtil.sys"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\LEGACY_BFILTER\0000]
"DeviceDesc"="Baidu Antivirus Minifilter Driver"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\LEGACY_BFMON\0000]
"DeviceDesc"="Baidu FS Monitor Driver"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\LEGACY_BHBASE\0000]
"DeviceDesc"="Baidu Hook Base"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\LEGACY_BNDEF\0000]
"DeviceDesc"="Baidu NetDefense"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\LEGACY_BPROTECT\0000]
"DeviceDesc"="Baidu Protect"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\LEGACY_BPROTECTEX\0000]
"DeviceDesc"="Baidu ProtectEx"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\services\Bfilter]
"DisplayName"="Baidu Antivirus Minifilter Driver"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\services\Bfmon]
"DisplayName"="Baidu FS Monitor Driver"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\services\Bhbase]
"DisplayName"="Baidu Hook Base"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\services\BHipsEx]
"DisplayName"="Baidu HipsEx Driver"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\services\Bndef]
"DisplayName"="Baidu NetDefense"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\services\Bprotect]
"DisplayName"="Baidu Protect"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\services\Bprotect]
"InstPath"="C:\\Program Files\\Baidu Security\\Baidu Antivirus"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\services\BprotectEx]
"DisplayName"="Baidu ProtectEx"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\services\BprotectEx]
"InstPath"="C:\\Program Files\\Baidu Security\\PC Faster\\4.0.0.0"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\services\PCFApiUtil]
"ImagePath"="\\??\\C:\\Program Files\\Baidu Security\\PC Faster\\4.0.0.0\\PCFApiUtil.sys"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_BFILTER\0000]
"DeviceDesc"="Baidu Antivirus Minifilter Driver"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_BFMON\0000]
"DeviceDesc"="Baidu FS Monitor Driver"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_BHBASE\0000]
"DeviceDesc"="Baidu Hook Base"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_BNDEF\0000]
"DeviceDesc"="Baidu NetDefense"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_BPROTECT\0000]
"DeviceDesc"="Baidu Protect"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_BPROTECTEX\0000]
"DeviceDesc"="Baidu ProtectEx"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Bfilter]
"DisplayName"="Baidu Antivirus Minifilter Driver"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Bfmon]
"DisplayName"="Baidu FS Monitor Driver"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Bhbase]
"DisplayName"="Baidu Hook Base"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\BHipsEx]
"DisplayName"="Baidu HipsEx Driver"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Bndef]
"DisplayName"="Baidu NetDefense"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Bprotect]
"DisplayName"="Baidu Protect"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Bprotect]
"InstPath"="C:\\Program Files\\Baidu Security\\Baidu Antivirus"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\BprotectEx]
"DisplayName"="Baidu ProtectEx"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\BprotectEx]
"InstPath"="C:\\Program Files\\Baidu Security\\PC Faster\\4.0.0.0"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\PCFApiUtil]
"ImagePath"="\\??\\C:\\Program Files\\Baidu Security\\PC Faster\\4.0.0.0\\PCFApiUtil.sys"
[HKEY_USERS\.DEFAULT\Software\Baidu]
[HKEY_USERS\.DEFAULT\Software\Baidu\Application Bug]
[HKEY_USERS\.DEFAULT\Software\Baidu\Application Bug\Bav]
[HKEY_USERS\.DEFAULT\Software\Baidu\Application Bug\Bav\log]
[HKEY_USERS\.DEFAULT\Software\Baidu\Application Bug\Bav\log\BavSvc.exe]
[HKEY_USERS\.DEFAULT\Software\Baidu\Application Bug\Bav\log\BHipsSvc.exe]
[HKEY_USERS\.DEFAULT\Software\Baidu Security]
[HKEY_USERS\.DEFAULT\Software\Baidu Security\Antivirus]
[HKEY_USERS\.DEFAULT\Software\Baidu Security\Antivirus\bug]
[HKEY_USERS\.DEFAULT\Software\Baidu Security\Antivirus\bug\driver]
[HKEY_USERS\.DEFAULT\Software\Baidu Security\Antivirus\bug\driver\050414-30264-01.dmp]
[HKEY_USERS\.DEFAULT\Software\Baidu Security\Antivirus\bug\driver\050914-16317-01.dmp]
[HKEY_USERS\.DEFAULT\Software\Baidu Security\Antivirus\bug\driver\072114-17019-01.dmp]
[HKEY_USERS\.DEFAULT\Software\Baidu Security\Antivirus\bug\driver\080514-17503-01.dmp]
[HKEY_USERS\.DEFAULT\Software\Baidu Security\Antivirus\bug\driver\080614-18688-01.dmp]
[HKEY_USERS\.DEFAULT\Software\Baidu Security\Antivirus\bug\driver\MEMORY_130436896085600370.dmp]
[HKEY_USERS\.DEFAULT\Software\Baidu Security\Antivirus\bug\driver\MEMORY_130441346101860188.dmp]
[HKEY_USERS\.DEFAULT\Software\Baidu Security\Antivirus\bug\driver\MEMORY_130504178245760195.dmp]
[HKEY_USERS\.DEFAULT\Software\Baidu Security\Antivirus\bug\driver\MEMORY_130516208654168227.dmp]
[HKEY_USERS\.DEFAULT\Software\Baidu Security\Antivirus\bug\driver\MEMORY_130517425392624207.dmp]
[HKEY_USERS\.DEFAULT\Software\Baidu Security\Antivirus\bug\driver\MEMORY_130518525716696196.dmp]
[HKEY_USERS\.DEFAULT\Software\Baidu Security\Antivirus\web]
[HKEY_USERS\.DEFAULT\Software\Baidu Security\Antivirus\web]
"ucloud"="u.br.bav.baidu.com"
[HKEY_USERS\.DEFAULT\Software\Baidu Security\Antivirus\web]
"dcloud"="http://up.br.bav.baidu.com/cgi-bin/url_warnning/url_warnning.cgi"
[HKEY_USERS\.DEFAULT\Software\Baidu Security\Antivirus\web]
"rcloud"="http://up.br.bav.baidu.com/cgi-bin/url_visit_action.cgi"
[HKEY_USERS\.DEFAULT\Software\Baidu Security\PC Faster]
[HKEY_USERS\S-1-5-21-3782492192-3975660756-536853386-1000\Software\Baidu Security]
[HKEY_USERS\S-1-5-21-3782492192-3975660756-536853386-1000\Software\Baidu Security\Antivirus]
[HKEY_USERS\S-1-5-21-3782492192-3975660756-536853386-1000\Software\Baidu Security\Antivirus\web]
[HKEY_USERS\S-1-5-21-3782492192-3975660756-536853386-1000\Software\Baidu Security\Antivirus\web]
"ucloud"="u.br.bav.baidu.com"
[HKEY_USERS\S-1-5-21-3782492192-3975660756-536853386-1000\Software\Baidu Security\Antivirus\web]
"dcloud"="http://up.br.bav.baidu.com/cgi-bin/url_warnning/url_warnning.cgi"
[HKEY_USERS\S-1-5-21-3782492192-3975660756-536853386-1000\Software\Baidu Security\Antivirus\web]
"rcloud"="http://up.br.bav.baidu.com/cgi-bin/url_visit_action.cgi"
[HKEY_USERS\S-1-5-21-3782492192-3975660756-536853386-1000\Software\Baidu Security\PC Faster]
[HKEY_USERS\S-1-5-21-3782492192-3975660756-536853386-1000\Software\Baidu Security\PC Faster\4.0.0.0]
[HKEY_USERS\S-1-5-21-3782492192-3975660756-536853386-1000\Software\Baidu Security\PC Faster\4.0.0.0\CleanRecord]
[HKEY_USERS\S-1-5-21-3782492192-3975660756-536853386-1000\Software\Baidu Security\PC Faster\4.0.0.0\Exam]
[HKEY_USERS\S-1-5-21-3782492192-3975660756-536853386-1000\Software\Baidu Security\PC Faster\4.0.0.0\Install]
[HKEY_USERS\S-1-5-21-3782492192-3975660756-536853386-1000\Software\Baidu Security\PC Faster\4.0.0.0\InstalledPatchesRecord]
[HKEY_USERS\S-1-5-21-3782492192-3975660756-536853386-1000\Software\Baidu Security\PC Faster\4.0.0.0\Run]
[HKEY_USERS\S-1-5-21-3782492192-3975660756-536853386-1000\Software\Baidu Security\PC Faster\4.0.0.0\Run\Disable]
[HKEY_USERS\S-1-5-21-3782492192-3975660756-536853386-1000\Software\Baidu Security\PC Faster\4.0.0.0\Run\Disable\alluser]
[HKEY_USERS\S-1-5-21-3782492192-3975660756-536853386-1000\Software\Baidu Security\PC Faster\4.0.0.0\Run\Disable\curuser]
[HKEY_USERS\S-1-5-21-3782492192-3975660756-536853386-1000\Software\Baidu Security\PC Faster\4.0.0.0\Run\Disable\hkcu]
[HKEY_USERS\S-1-5-21-3782492192-3975660756-536853386-1000\Software\Baidu Security\PC Faster\4.0.0.0\Run\Disable\hkcu]
"Facebook Update_BaiDuSafe_RegType"=dword:00000002
[HKEY_USERS\S-1-5-21-3782492192-3975660756-536853386-1000\Software\Baidu Security\PC Faster\4.0.0.0\Run\Disable\hklm]
[HKEY_USERS\S-1-5-21-3782492192-3975660756-536853386-1000\Software\Baidu Security\PC Faster\4.0.0.0\Run\Disable\hklm]
"Iminent_BaiDuSafe_RegType"=dword:00000001
[HKEY_USERS\S-1-5-21-3782492192-3975660756-536853386-1000\Software\Baidu Security\PC Faster\4.0.0.0\Run\Disable\hklm]
"IminentMessenger_BaiDuSafe_RegType"=dword:00000001
[HKEY_USERS\S-1-5-21-3782492192-3975660756-536853386-1000\Software\Baidu Security\PC Faster\4.0.0.0\Statistic]
[HKEY_USERS\S-1-5-21-3782492192-3975660756-536853386-1000\Software\Baidu Security\PC Faster\4.0.0.0\UUReport]
[HKEY_USERS\S-1-5-21-3782492192-3975660756-536853386-1000\Software\Baidu Security\PC Faster\Setup]
[HKEY_USERS\S-1-5-21-3782492192-3975660756-536853386-1000\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-3782492192-3975660756-536853386-1000\Software\Avast Software\WRC\SearchRules\baidu.com]
[HKEY_USERS\S-1-5-21-3782492192-3975660756-536853386-1000\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-3782492192-3975660756-536853386-1000\Software\Avast Software\WRC\SearchRules\baidu.com]
"url"="^http\\:\\/\\/www\\.baidu\\.com\\/.*"
[HKEY_USERS\S-1-5-18\Software\Baidu]
[HKEY_USERS\S-1-5-18\Software\Baidu\Application Bug]
[HKEY_USERS\S-1-5-18\Software\Baidu\Application Bug\Bav]
[HKEY_USERS\S-1-5-18\Software\Baidu\Application Bug\Bav\log]
[HKEY_USERS\S-1-5-18\Software\Baidu\Application Bug\Bav\log\BavSvc.exe]
[HKEY_USERS\S-1-5-18\Software\Baidu\Application Bug\Bav\log\BHipsSvc.exe]
[HKEY_USERS\S-1-5-18\Software\Baidu Security]
[HKEY_USERS\S-1-5-18\Software\Baidu Security\Antivirus]
[HKEY_USERS\S-1-5-18\Software\Baidu Security\Antivirus\bug]
[HKEY_USERS\S-1-5-18\Software\Baidu Security\Antivirus\bug\driver]
[HKEY_USERS\S-1-5-18\Software\Baidu Security\Antivirus\bug\driver\050414-30264-01.dmp]
[HKEY_USERS\S-1-5-18\Software\Baidu Security\Antivirus\bug\driver\050914-16317-01.dmp]
[HKEY_USERS\S-1-5-18\Software\Baidu Security\Antivirus\bug\driver\072114-17019-01.dmp]
[HKEY_USERS\S-1-5-18\Software\Baidu Security\Antivirus\bug\driver\080514-17503-01.dmp]
[HKEY_USERS\S-1-5-18\Software\Baidu Security\Antivirus\bug\driver\080614-18688-01.dmp]
[HKEY_USERS\S-1-5-18\Software\Baidu Security\Antivirus\bug\driver\MEMORY_130436896085600370.dmp]
[HKEY_USERS\S-1-5-18\Software\Baidu Security\Antivirus\bug\driver\MEMORY_130441346101860188.dmp]
[HKEY_USERS\S-1-5-18\Software\Baidu Security\Antivirus\bug\driver\MEMORY_130504178245760195.dmp]
[HKEY_USERS\S-1-5-18\Software\Baidu Security\Antivirus\bug\driver\MEMORY_130516208654168227.dmp]
[HKEY_USERS\S-1-5-18\Software\Baidu Security\Antivirus\bug\driver\MEMORY_130517425392624207.dmp]
[HKEY_USERS\S-1-5-18\Software\Baidu Security\Antivirus\bug\driver\MEMORY_130518525716696196.dmp]
[HKEY_USERS\S-1-5-18\Software\Baidu Security\Antivirus\web]
[HKEY_USERS\S-1-5-18\Software\Baidu Security\Antivirus\web]
"ucloud"="u.br.bav.baidu.com"
[HKEY_USERS\S-1-5-18\Software\Baidu Security\Antivirus\web]
"dcloud"="http://up.br.bav.baidu.com/cgi-bin/url_warnning/url_warnning.cgi"
[HKEY_USERS\S-1-5-18\Software\Baidu Security\Antivirus\web]
"rcloud"="http://up.br.bav.baidu.com/cgi-bin/url_visit_action.cgi"
[HKEY_USERS\S-1-5-18\Software\Baidu Security\PC Faster]
==== Firefox Extensions ======================
ProfilePath: C:\Users\PAULA\AppData\Roaming\Mozilla\Firefox\Profiles\0idzxbd9.default
- BonanzaDeals - %ProfilePath%\extensions\{f9d03c26-0575-497e-821d-f7956d23e0ca}.xpi
AppDir: C:\Program Files\Mozilla Firefox
- Default - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
==== Firefox Plugins ======================
Profilepath: C:\Users\PAULA\AppData\Roaming\Mozilla\Firefox\Profiles\0idzxbd9.default
785105A23650755A8F7A72405EB0D923 - C:\Program Files\Google\Update\1.3.24.7\npGoogleUpdate3.dll - Google Update
A58DE0A570148AF5FF3512B2A340D09F - C:\Windows\system32\Macromed\Flash\NPSWF32_13_0_0_214.dll - Shockwave Flash
01D93217A9EE48DD37072B671378CC9C - c:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll - Silverlight Plug-In
FF0D6F82A0EC13952E83B9439100E45D - C:\Users\PAULA\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll - Facebook Video Calling Plugin
D6ED6EB98E759460AD8C66DE23070132 - C:\Program Files\Mozilla Firefox\plugins\npMeetingJoinPluginOC.dll - Microsoft Office 2013
28986F0A2342A033345EF9E70D395E4F - c:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrlui.dll - Microsoft® Silverlight
==== Deleted Firefox Extensions ======================
C:\Users\PAULA\AppData\Roaming\Mozilla\Firefox\Profiles\0idzxbd9.default\extensions\{f9d03c26-0575-497e-821d-f7956d23e0ca}.xpi deleted
==== Chrome Look ======================
YoutubeAdblocker - Administrador\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\cikmmjljgfkiaejjlkbadpbedefaeapg
savue net - Administrador\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\diookfjjcedbcdmhdljgaedgnnihcbhc
siavvei nET - Administrador\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\ebafofodnlacljghoeaocpfknocfkpim
saove neT - Administrador\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\hedlmfilejbdijlonlmnackgaldhpeoo
RDS bar seo pagerank dmoz alexa pr - Administrador\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\jlipcaflaocihnmlhnhcfombgmmfglho
RDS bar seo pagerank dmoz alexa pr - Administrador\AppData\Local\Google\Chrome\User Data\Default\Extensions\jlipcaflaocihnmlhnhcfombgmmfglho
YoutubeAdblocker - Administrador\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\cikmmjljgfkiaejjlkbadpbedefaeapg
savue net - Administrador\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\diookfjjcedbcdmhdljgaedgnnihcbhc
siavvei nET - Administrador\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\ebafofodnlacljghoeaocpfknocfkpim
saove neT - Administrador\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\hedlmfilejbdijlonlmnackgaldhpeoo
RDS bar seo pagerank dmoz alexa pr - Administrador\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\jlipcaflaocihnmlhnhcfombgmmfglho
YoutubeAdblocker - Convidado\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\cikmmjljgfkiaejjlkbadpbedefaeapg
savue net - Convidado\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\diookfjjcedbcdmhdljgaedgnnihcbhc
siavvei nET - Convidado\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\ebafofodnlacljghoeaocpfknocfkpim
saove neT - Convidado\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\hedlmfilejbdijlonlmnackgaldhpeoo
RDS bar seo pagerank dmoz alexa pr - Convidado\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\jlipcaflaocihnmlhnhcfombgmmfglho
RDS bar seo pagerank dmoz alexa pr - Convidado\AppData\Local\Google\Chrome\User Data\Default\Extensions\jlipcaflaocihnmlhnhcfombgmmfglho
YoutubeAdblocker - Convidado\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\cikmmjljgfkiaejjlkbadpbedefaeapg
savue net - Convidado\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\diookfjjcedbcdmhdljgaedgnnihcbhc
siavvei nET - Convidado\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\ebafofodnlacljghoeaocpfknocfkpim
saove neT - Convidado\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\hedlmfilejbdijlonlmnackgaldhpeoo
RDS bar seo pagerank dmoz alexa pr - Convidado\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\jlipcaflaocihnmlhnhcfombgmmfglho
Docs - Default\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake
Google Drive - Default\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf
YouTube - Default\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo
Iminent Chrome Toolbar - Default\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkhojieggfgllhllcegoffdcnmdeojgb
Docs - Default User\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake
Google Drive - Default User\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf
YouTube - Default User\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo
Iminent Chrome Toolbar - Default User\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkhojieggfgllhllcegoffdcnmdeojgb
Video Bookmarks - PAULA\AppData\Local\Google\Chrome\User Data\Default\Extensions\hkpgpmmooejhfhojndincjeonokodggj
YoutubeAdblocker - PAULA\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\cikmmjljgfkiaejjlkbadpbedefaeapg
savue net - PAULA\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\diookfjjcedbcdmhdljgaedgnnihcbhc
siavvei nET - PAULA\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\ebafofodnlacljghoeaocpfknocfkpim
saove neT - PAULA\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\hedlmfilejbdijlonlmnackgaldhpeoo
RDS bar seo pagerank dmoz alexa pr - PAULA\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\jlipcaflaocihnmlhnhcfombgmmfglho
Docs - USURIO~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake
Google Drive - USURIO~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf
YouTube - USURIO~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo
Iminent Chrome Toolbar - USURIO~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkhojieggfgllhllcegoffdcnmdeojgb
Google Docs - C:\Windows\system32\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake
Google Drive - C:\Windows\system32\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf
YouTube - C:\Windows\system32\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo
Google Search - C:\Windows\system32\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf
Video Bookmarks - C:\Windows\system32\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\hkpgpmmooejhfhojndincjeonokodggj
Chrome In-App Payments service - C:\Windows\system32\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda
Gmail - C:\Windows\system32\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia
==== Chrome Fix ======================
C:\Users\Administrador\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\cikmmjljgfkiaejjlkbadpbedefaeapg deleted successfully
C:\Users\Administrador\AppData\Local\Google\Chrome\User Data\Default\Extensions\cikmmjljgfkiaejjlkbadpbedefaeapg deleted successfully
C:\Users\Administrador\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\cikmmjljgfkiaejjlkbadpbedefaeapg deleted successfully
C:\Users\Convidado\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\cikmmjljgfkiaejjlkbadpbedefaeapg deleted successfully
C:\Users\Convidado\AppData\Local\Google\Chrome\User Data\Default\Extensions\cikmmjljgfkiaejjlkbadpbedefaeapg deleted successfully
C:\Users\Convidado\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\cikmmjljgfkiaejjlkbadpbedefaeapg deleted successfully
C:\Users\PAULA\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\cikmmjljgfkiaejjlkbadpbedefaeapg deleted successfully
C:\Users\Default\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkhojieggfgllhllcegoffdcnmdeojgb deleted successfully
C:\Users\Administrador\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\diookfjjcedbcdmhdljgaedgnnihcbhc deleted successfully
C:\Users\Administrador\AppData\Local\Google\Chrome\User Data\Default\Extensions\diookfjjcedbcdmhdljgaedgnnihcbhc deleted successfully
C:\Users\Administrador\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\diookfjjcedbcdmhdljgaedgnnihcbhc deleted successfully
C:\Users\Convidado\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\diookfjjcedbcdmhdljgaedgnnihcbhc deleted successfully
C:\Users\Convidado\AppData\Local\Google\Chrome\User Data\Default\Extensions\diookfjjcedbcdmhdljgaedgnnihcbhc deleted successfully
C:\Users\Convidado\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\diookfjjcedbcdmhdljgaedgnnihcbhc deleted successfully
C:\Users\PAULA\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\diookfjjcedbcdmhdljgaedgnnihcbhc deleted successfully
C:\Users\Administrador\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\ebafofodnlacljghoeaocpfknocfkpim deleted successfully
C:\Users\Administrador\AppData\Local\Google\Chrome\User Data\Default\Extensions\ebafofodnlacljghoeaocpfknocfkpim deleted successfully
C:\Users\Administrador\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\ebafofodnlacljghoeaocpfknocfkpim deleted successfully
C:\Users\Convidado\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\ebafofodnlacljghoeaocpfknocfkpim deleted successfully
C:\Users\Convidado\AppData\Local\Google\Chrome\User Data\Default\Extensions\ebafofodnlacljghoeaocpfknocfkpim deleted successfully
C:\Users\Convidado\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\ebafofodnlacljghoeaocpfknocfkpim deleted successfully
C:\Users\PAULA\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\ebafofodnlacljghoeaocpfknocfkpim deleted successfully
C:\Users\Administrador\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\hedlmfilejbdijlonlmnackgaldhpeoo deleted successfully
C:\Users\Administrador\AppData\Local\Google\Chrome\User Data\Default\Extensions\hedlmfilejbdijlonlmnackgaldhpeoo deleted successfully
C:\Users\Administrador\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\hedlmfilejbdijlonlmnackgaldhpeoo deleted successfully
C:\Users\Convidado\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\hedlmfilejbdijlonlmnackgaldhpeoo deleted successfully
C:\Users\Convidado\AppData\Local\Google\Chrome\User Data\Default\Extensions\hedlmfilejbdijlonlmnackgaldhpeoo deleted successfully
C:\Users\Convidado\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\hedlmfilejbdijlonlmnackgaldhpeoo deleted successfully
C:\Users\PAULA\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\hedlmfilejbdijlonlmnackgaldhpeoo deleted successfully
C:\Users\Administrador\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\jlipcaflaocihnmlhnhcfombgmmfglho deleted successfully
C:\Users\Administrador\AppData\Local\Google\Chrome\User Data\Default\Extensions\jlipcaflaocihnmlhnhcfombgmmfglho deleted successfully
C:\Users\Administrador\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\jlipcaflaocihnmlhnhcfombgmmfglho deleted successfully
C:\Users\Convidado\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\jlipcaflaocihnmlhnhcfombgmmfglho deleted successfully
C:\Users\Convidado\AppData\Local\Google\Chrome\User Data\Default\Extensions\jlipcaflaocihnmlhnhcfombgmmfglho deleted successfully
C:\Users\Convidado\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\jlipcaflaocihnmlhnhcfombgmmfglho deleted successfully
C:\Users\PAULA\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\jlipcaflaocihnmlhnhcfombgmmfglho deleted successfully
C:\Users\PAULA\AppData\Local\Google\Chrome\User Data\Default\Extensions\hkpgpmmooejhfhojndincjeonokodggj deleted successfully
C:\Windows\system32\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\hkpgpmmooejhfhojndincjeonokodggj deleted successfully
==== Set IE to Default ======================
Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.google.com.br/"
"Search Page"="http://www.google.com"
"Search Bar"="http://www.google.com"
"Use Search Asst"="yes"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Search_URL"="http://www.google.com"
"Start Page"="http://www.google.com"
"Search Page"="http://www.google.com"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchUrl]
"Default"="http://www.google.com"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl]
"Default"="http://www.google.com"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search]
"Default_Search_URL"="http://www.google.com"
"SearchAssistant"="http://www.google.com"
New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Bar"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Start Page"="http://www.google.com.br/"
"Use Search Asst"="no"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchUrl]
"(Default)"="http://search.msn.com/results.asp?q=%s"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl]
"(Default)"="http://search.msn.com/results.asp?q=%s"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search]
"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"
"SearchAssistant"="http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm"
==== All HKCU SearchScopes ======================
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
"DefaultScope"="{F332711C-9CA5-46C3-9FEF-505DBE19E895}"
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE11SR"
{6A1806CD-94D4-4689-BA73-E35EA1EA9990} Google Url="http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage}"
{F332711C-9CA5-46C3-9FEF-505DBE19E895} Google Url="https://www.google.com/search?q={searchTerms}"
==== Reset Google Chrome ======================
C:\Users\PAULA\AppData\Local\Google\Chrome\User Data\Default\preferences was reset successfully
C:\Windows\system32\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully
C:\Users\Default\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully
C:\Users\Default User\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully
C:\Users\PAULA\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully
C:\Users\USURIO~1\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully
C:\Windows\system32\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully
==== Deleting CLSID Registry Keys ======================
HKEY_USERS\S-1-5-21-3782492192-3975660756-536853386-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F7ACAB96-6911-40C1-4CD4-2B9FC785161C} deleted successfully
HKEY_USERS\S-1-5-21-3782492192-3975660756-536853386-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{F7ACAB96-6911-40C1-4CD4-2B9FC785161C} deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{F7ACAB96-6911-40C1-4CD4-2B9FC785161C} deleted successfully
HKEY_CLASSES_ROOT\CLSID\{F7ACAB96-6911-40C1-4CD4-2B9FC785161C} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F7ACAB96-6911-40C1-4CD4-2B9FC785161C} deleted successfully
==== Deleting CLSID Registry Values ======================
==== shortcuts on Users Desktops ======================
C:\Users\Default\Desktop\Google Chrome.lnk - C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Users\Default User\Desktop\Google Chrome.lnk - C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Users\PAULA\Desktop\aTube Catcher.lnk - C:\Program Files\DsNET Corp\aTube Catcher 2.0\yct.exe
C:\Users\PAULA\Desktop\Documentos - Atalho.lnk - C:\Users\PAULA\AppData\Roaming\Microsoft\Windows\Libraries\Documents.library-ms
C:\Users\PAULA\Desktop\Internet Explorer.lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\PAULA\Desktop\Microsoft Security Essentials.lnk - C:\Program Files\Microsoft Security Client\msseces.exe
C:\Users\PAULA\Desktop\Mozilla Firefox.lnk - C:\Program Files\Mozilla Firefox\firefox.exe
C:\Users\PAULA\Desktop\Nero 12.lnk -
C:\Users\PAULA\Desktop\Nero Burning ROM.lnk - C:\Windows\Installer\{5963F4B4-D138-47CD-ADEF-470E87E185BD}\ScBurningROMStartM_FF88F478D1E748AC86035D457D563142.exe
C:\Users\PAULA\Desktop\PowerPoint 2013.lnk - C:\Windows\Installer\{90150000-0011-0000-0000-0000000FF1CE}\pptico.exe
C:\Users\USURIO~1\Desktop\Google Chrome.lnk - C:\Program Files\Google\Chrome\Application\chrome.exe
==== shortcuts in Users Start Menu ======================
C:\Users\PAULA\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\PAULA\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk - C:\Program Files\Internet Explorer\iexplore.exe
==== shortcuts in All Users Start Menu ======================
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome\Google Chrome.lnk - C:\Program Files\Google\Chrome\Application\chrome.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Excel 2013.lnk - C:\Windows\Installer\{90150000-0011-0000-0000-0000000FF1CE}\xlicons.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Lync 2013.lnk - C:\Windows\Installer\{90150000-0011-0000-0000-0000000FF1CE}\lyncicon.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\OneDrive for Business 2013.lnk - C:\Windows\Installer\{90150000-0011-0000-0000-0000000FF1CE}\grv_icons.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Outlook 2013.lnk - C:\Windows\Installer\{90150000-0011-0000-0000-0000000FF1CE}\outicon.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\PowerPoint 2013.lnk - C:\Windows\Installer\{90150000-0011-0000-0000-0000000FF1CE}\pptico.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Publisher 2013.lnk - C:\Windows\Installer\{90150000-0011-0000-0000-0000000FF1CE}\pubs.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Word 2013.lnk - C:\Windows\Installer\{90150000-0011-0000-0000-0000000FF1CE}\wordicon.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Ferramentas do Office 2013\Gerenciador de Gravação do Lync.lnk -
==== shortcuts in Quick Launch ======================
C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -
C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -
C:\Users\Default User\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -
C:\Users\Default User\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -
C:\Users\PAULA\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\FLV Player.lnk - C:\Program Files\FLVPlayer\FLVPlayer.exe
C:\Users\PAULA\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Users\PAULA\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\PAULA\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Microsoft Outlook.lnk - C:\Program Files\Microsoft Office\Office15\OUTLOOK.EXE /recycle
C:\Users\PAULA\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\PhotoScape.lnk - C:\Program Files\PhotoScape\PhotoScape.exe
C:\Users\PAULA\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -
C:\Users\PAULA\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -
C:\Users\PAULA\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\7e4dca80246863e3\pinned.lnk - C:\Windows\system32\control.exe
C:\Users\PAULA\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\Mozilla Firefox.lnk - C:\Program Files\Mozilla Firefox\firefox.exe
C:\Users\PAULA\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\PhotoScape.lnk - C:\Program Files\PhotoScape\PhotoScape.exe
C:\Users\PAULA\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\GTA San Andreas.lnk - C:\Program Files\Rockstar Games\GTA San Andreas\gta_sa.exe
C:\Users\PAULA\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer.lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\PAULA\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Mozilla Firefox.lnk - C:\Program Files\Mozilla Firefox\firefox.exe
C:\Users\PAULA\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Outlook 2013.lnk - C:\Windows\Installer\{90150000-0011-0000-0000-0000000FF1CE}\outicon.exe
C:\Users\PAULA\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Windows Explorer.lnk - C:\Windows\explorer.exe
C:\Users\PAULA\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Windows Media Player.lnk - C:\Program Files\Windows Media Player\wmplayer.exe /prefetch:1
C:\Users\USURIO~1\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -
C:\Users\USURIO~1\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -
==== Reset IE Proxy ======================
Value(s) before fix:
"ProxyOverride"="<-loopback>"
"ProxyEnable"=dword:00000000
Value(s) after fix:
"ProxyEnable"=dword:00000000
==== Deleting Registry Keys ======================
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\530E6EC689CD033409B6029DD21E26F9 deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\30c93242-691b-4220-b22c-f0e8d22a0b7e deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\aabf4d86-3b09-4f4d-82a6-3ccc61f49aeb deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\f37c3ae8-09ec-4085-8048-b84cd7ab4524 deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{0D566ABB-889B-AF39-7B6A-23D4C5D54542} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Products\530E6EC689CD033409B6029DD21E26F9 deleted successfully
==== Empty IE Cache ======================
C:\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\PAULA\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\PAULA\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully
C:\Users\PAULA\AppData\Local\Temp\Low\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\PAULA\AppData\Local\Temp\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
==== Empty FireFox Cache ======================
C:\Users\PAULA\AppData\Local\Mozilla\Firefox\Profiles\0idzxbd9.default\Cache emptied successfully
==== Empty Chrome Cache ======================
C:\Users\Default\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully
C:\Users\Default User\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully
C:\Users\PAULA\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully
C:\Users\USURIO~1\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully
C:\Windows\system32\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully
==== Empty All Flash Cache ======================
Flash Cache Emptied Successfully
==== Empty All Java Cache ======================
No Java Cache Found
==== C:\zoek_backup content ======================
C:\zoek_backup (files=1096 folders=117 72506810 bytes)
==== Empty Temp Folders ======================
C:\Users\Default\AppData\Local\Temp emptied successfully
C:\Users\Default User\AppData\Local\Temp emptied successfully
C:\Users\PAULA\AppData\Local\Temp will be emptied at reboot
C:\Users\USURIO~1\AppData\Local\Temp emptied successfully
C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
C:\Windows\Temp will be emptied at reboot
==== After Reboot ======================
==== Empty Temp Folders ======================
C:\Windows\Temp successfully emptied
C:\Users\PAULA\AppData\Local\Temp successfully emptied
==== Empty Recycle Bin ======================
C:\$RECYCLE.BIN successfully emptied
==== EOF on 02/07/2014 at 0:35:08,30 ======================
Cristi4n0- Iniciante
- Mensagens : 17
Reputação : 0
Data de inscrição : 12/06/2014
Idade : 42
Localização : Pernambuco-Brasil
Re: Problemas com adwares no PC
TÓPICO ARQUIVADO
Caso o autor do tópico necessite, o mesmo será reaberto, para isso deverá entrar em contato com um dos membros da [Tens de ter uma conta e sessão iniciada para poderes visualizar este link] solicitando o desbloqueio.
Caso o autor do tópico necessite, o mesmo será reaberto, para isso deverá entrar em contato com um dos membros da [Tens de ter uma conta e sessão iniciada para poderes visualizar este link] solicitando o desbloqueio.
Tópicos semelhantes
» Problemas com Adwares
» Problemas com adwares no PC
» Notebook com adwares
» (RESOLVIDO) Ajuda para remover adwares e problemas no PC
» Remoção de adwares!
» Problemas com adwares no PC
» Notebook com adwares
» (RESOLVIDO) Ajuda para remover adwares e problemas no PC
» Remoção de adwares!
Página 1 de 1
Permissões neste sub-fórum
Não podes responder a tópicos
|
|